Skip to content
v0.3

read.internal.admin_users

The tenant’s admin operators (id, email, name, status, role), filterable by status and searchable by name/email. Internal face only.

  • Surface: GET /v1/read/internal/admin_users · MCP tool read.internal.admin_users
  • Auth:Internal read (operator) — a tenant credential is REQUIRED; requires the admin.users.write scope. The tenant is resolved from the CALLER’s identity, never from store. Personal fields come back MASKED for an actor without pii.read (the shape is unchanged).
{
"properties": {
"q": {
"minLength": 1,
"type": "string"
},
"status": {
"enum": [
"invited",
"active",
"disabled"
],
"type": "string"
}
},
"type": "object"
}

Open (unknown) — this capability does not declare an output schema.

validation_failed (400) · not_found (404) · unauthorized (401) · forbidden (403)